Security Implementations....your opinions
I'm looking for your thoughts and opinions on this. Note: By reading this, you agree that you are not holding anyone that posts responsible for what they say or suggest. By posting, you will not be held responsible for any outcomes that occur from the use of your information.I think the best way to do this is to provide 2 scenarios. 1) a very large budget and 2) a minimal budget. What security measures and features would you put up to make sure that your clients information and CC numbers are stored on your servers in the MOST SECURE way. What SSL cert would you get? What O/S would you use? What software would/wouldn't you have installed? What type of database would you store it in? What kind of server setup would you use if there was more than 1 server involved?
Please post your answers to the above 2 scenarios. I've seen posts where people say that security measures need to be put in place but they never really suggest what to do. If you had to store the information on servers for software use, how would you do it?
Thanks.